CVE-2016-10229: Critical severity Linux Linux Kernel vulnerability
udp.c in the Linux kernel before 4.5 allows remote attackers to execute arbitrary code via UDP traffic that triggers an unsafe second checksum calculation during execution of a recv system call with the MSGPEEK flag.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-10229?
CVE-2016-10229 has a high severity level due to its potential to allow remote code execution.
How do I fix CVE-2016-10229?
To fix CVE-2016-10229, ensure your Linux kernel is updated to version 4.5 or later, and apply any relevant security patches.
Who is affected by CVE-2016-10229?
CVE-2016-10229 affects various versions of the Linux kernel prior to 4.5 and certain Android versions up to 7.1.1.
What type of attack is possible with CVE-2016-10229?
CVE-2016-10229 allows remote attackers to execute arbitrary code through specially crafted UDP traffic.
What should I do if I'm running an affected version related to CVE-2016-10229?
If you are running an affected version related to CVE-2016-10229, immediately check for updates and apply them to mitigate the risk.